[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[no subject]



Greg wrote:

>Yes, I would be happy to help with an install of OpenBSD.  The only part I
>have never done is connecting it to a modem (I am strictly Ethernet in the
>house w/ the only modems being Winmodems - 1 in a pc for an emergency and 7
>in a box in a closet).
>
>The instructions actually come with the CD's (along with an OpenBSD oriented
>soundtrack) for those that support the project.  I use it for my public
>servers and a transparent bridging firewall.
>
>The big thing this year was the addition of CARP (from
&gt;<a  rel="nofollow" href="http://www.openbsd.org/35.html";>http://www.openbsd.org/35.html</a> )
&gt;# New tools for filtering gateway failover:
&gt;
&gt;    * CARP (the Common Address Redundancy Protocol) carp(4) allows multiple
&gt;machines to share responsibility for a given IP address or addresses. If the
&gt;owner of the address fails, another member of the group will take over for
&gt;it.
&gt;
&gt;    * Additions to the pfsync(4) interface allow it to synchronise state
&gt;table entries between two or more firewalls which are operating in parallel,
&gt;allowing stateful connections to cross any of the firewalls regardless of
&gt;where the state was initially created.
&gt;
&gt;The only thing I have a problem with is the upgrading of installed
&gt;ports/packages.  It has about as many ports/packages as FreeBSD so you can
&gt;make it a desktop or whatever you want.  However, the default install has
&gt;only SSH turned on.  The team has done a code audit of the OS and the
&gt;following programs:
&gt;
&gt;
&gt;What is included with OpenBSD?
&gt;OpenBSD is distributed with a number of third-party software products,
&gt;including:
&gt;
&gt;    * XFree86 4.4.0, unencumbered by a new license change; the X Window
&gt;environment, with local patches. For i386, v3.3 X servers are also included
&gt;for additional graphic chipset support. Installed with the x*.tgz install
&gt;file sets.
&gt;    * GCC versions 2.95.3 and 3.3.2. GNU C Compiler. The OpenBSD team has
&gt;added the Propolice stack protection technology, enabled by default, and
&gt;used throughout the OpenBSD userland and by default on applications compiled
&gt;on OpenBSD. Installed as part of the comp35.tgz file set.
&gt;    * Perl 5.8.2, with patches and improvements from the OpenBSD team.
&gt;    * Apache 1.3.29 web server. The OpenBSD team has added default
&gt;chrooting, privilege revocation, and other security-related improvements.
&gt;Also includes mod_ssl 2.8.16 and DSO support.
&gt;    * OpenSSL 0.9.7c, with patches and improvements from the OpenBSD team.
&gt;    * Groff 1.15 text processor.
&gt;    * Sendmail 8.12.11 mail server.
&gt;    * BIND 9.2.3 DNS server. OpenBSD has implemented many improvements in
&gt;chroot operation and other security-related issues.
&gt;    * Lynx 2.8.4rel.1 text web browser. With HTTPS support added, plus
&gt;patches from the OpenBSD team.
&gt;    * Sudo v1.6.7p5, allowing users to run individual commands as root.
&gt;    * Ncurses 5.2.
&gt;    * KAME IPv6.
&gt;    * Heimdal 0.6rc1 with patches
&gt;    * Arla-current
&gt;    * OpenSSH 3.8.1
&gt;
&gt;As can be seen, the OpenBSD team often patches third-party products
&gt;(typically) to improve the security or quality of the code. In some cases,
&gt;the user will see no difference in operation, in other cases, there ARE
&gt;operational differences which may impact some users. Keep these enhancements
&gt;in mind before blindly adding different versions of the same software.
&gt;
&gt;Of course, additional applications can be added through the OpenBSD packages
&gt;and ports system.
&gt;
&gt;Greg
&gt;
&gt;
&gt;
&gt;  
&gt;
&gt;&gt;-----Original Message-----
&gt;&gt;From: ale-bounces at ale.org [<a  rel="nofollow" href="mailto:ale-bounces";>mailto:ale-bounces</a> at ale.org]On Behalf Of
&gt;&gt;Matthew Magee
&gt;&gt;Sent: Tuesday, August 17, 2004 9:24 PM
&gt;&gt;To: Atlanta Linux Enthusiasts
&gt;&gt;Subject: Re: [ale] ALE NW presentation for this month
&gt;&gt;
&gt;&gt;
&gt;&gt;Ahhhh!  A volunteer!  :)
&gt;&gt;
&gt;&gt;I've done it, but involved much head scratching and questionable results.
&gt;&gt;
&gt;&gt;Greg wrote:
&gt;&gt;
&gt;&gt;    
&gt;&gt;
&gt;&gt;&gt;It is really the easiest thing in the world.  I have 4 of them
&gt;&gt;&gt;      
&gt;&gt;&gt;
&gt;&gt;running and
&gt;&gt;    
&gt;&gt;
&gt;&gt;&gt;it works great.
&gt;&gt;&gt;
&gt;&gt;&gt;Greg
&gt;&gt;&gt;
&gt;&gt;&gt;
&gt;&gt;&gt;
&gt;&gt;&gt;      
&gt;&gt;&gt;
&gt;&gt;&gt;&gt;-----Original Message-----
&gt;&gt;&gt;&gt;From: ale-bounces at ale.org [<a  rel="nofollow" href="mailto:ale-bounces";>mailto:ale-bounces</a> at ale.org]On Behalf Of
&gt;&gt;&gt;&gt;alelist
&gt;&gt;&gt;&gt;Sent: Tuesday, August 17, 2004 7:36 PM
&gt;&gt;&gt;&gt;To: Atlanta Linux Enthusiasts
&gt;&gt;&gt;&gt;Subject: Re: [ale] ALE NW presentation for this month
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;Yeah, I'd like to see Open BSD installed by command-line only.
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;On Tue, 2004-08-17 at 19:00, Matt Magee wrote:
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;        
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;On Tuesday 17 August 2004 06:08 am, Geoffrey wrote:
&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;          
&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;&gt;I do not have a presenter for this month.  If anyone has
&gt;&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;&gt;            
&gt;&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;anything they'd
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;        
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;&gt;like to present on, please let me know asap.
&gt;&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;&gt;            
&gt;&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;I don't have anything to present, but I do have an old box
&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;          
&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;(K6-2 500) and an
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;        
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;OpenBSD CD.  If anyone knows BSD fairly well, we can set it up
&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;          
&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;to see if the
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;        
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;OpenBSD folks have any good ideas in there.  Maybe see how the
&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;          
&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;other Open
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;        
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;Source folks are doing.
&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;_______________________________________________
&gt;&gt;&gt;&gt;&gt;Ale mailing list
&gt;&gt;&gt;&gt;&gt;Ale at ale.org
&gt;&gt;&gt;&gt;&gt;<a  rel="nofollow" href="http://www.ale.org/mailman/listinfo/ale";>http://www.ale.org/mailman/listinfo/ale</a>
&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;&gt;          
&gt;&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;--
&gt;&gt;&gt;&gt;Certified Microsoft-free e-mail.
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;_______________________________________________
&gt;&gt;&gt;&gt;Ale mailing list
&gt;&gt;&gt;&gt;Ale at ale.org
&gt;&gt;&gt;&gt;<a  rel="nofollow" href="http://www.ale.org/mailman/listinfo/ale";>http://www.ale.org/mailman/listinfo/ale</a>
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;&gt;        
&gt;&gt;&gt;&gt;
&gt;&gt;&gt;_______________________________________________
&gt;&gt;&gt;Ale mailing list
&gt;&gt;&gt;Ale at ale.org
&gt;&gt;&gt;<a  rel="nofollow" href="http://www.ale.org/mailman/listinfo/ale";>http://www.ale.org/mailman/listinfo/ale</a>
&gt;&gt;&gt;
&gt;&gt;&gt;
&gt;&gt;&gt;
&gt;&gt;&gt;
&gt;&gt;&gt;      
&gt;&gt;&gt;
&gt;&gt;_______________________________________________
&gt;&gt;Ale mailing list
&gt;&gt;Ale at ale.org
&gt;&gt;<a  rel="nofollow" href="http://www.ale.org/mailman/listinfo/ale";>http://www.ale.org/mailman/listinfo/ale</a>
&gt;&gt;
&gt;&gt;
&gt;&gt;
&gt;&gt;    
&gt;&gt;
&gt;
&gt;
&gt;
&gt;  
&gt;


</pre>
<!--X-Body-of-Message-End-->
<!--X-MsgBody-End-->
<!--X-Follow-Ups-->
<hr>
<!--X-Follow-Ups-End-->
<!--X-References-->
<ul><li><strong>References</strong>:
<ul>
<li><strong><a name="00438" href="msg00438.html">[ale] ALE NW presentation for this month</a></strong>
<ul><li><em>From:</em> runman at speedfactory.net (Greg)</li></ul></li>
</ul></li></ul>
<!--X-References-End-->
<!--X-BotPNI-->
<ul>
<li>Prev by Date:
<strong><a href="msg00441.html">[ale] astaro?</a></strong>
</li>
<li>Next by Date:
<strong><a href="msg00443.html">[ale] Like Anxiety Closet only Obnoxiousness</a></strong>
</li>
<li>Previous by thread:
<strong><a href="msg00438.html">[ale] ALE NW presentation for this month</a></strong>
</li>
<li>Next by thread:
<strong><a href="msg00426.html">[ale] ALE NW presentation for this month</a></strong>
</li>
<li>Index(es):
<ul>
<li><a href="maillist.html#00442"><strong>Date</strong></a></li>
<li><a href="threads.html#00442"><strong>Thread</strong></a></li>
</ul>
</li>
</ul>

<!--X-BotPNI-End-->
<!--X-User-Footer-->
<!--X-User-Footer-End-->
</body>
</html>